TCP Portals: The Handshake’s a Lie!

A few days ago I came across this blog post by Tod Beardsley. Since there is no cool bug disclosed recently (which apparently, is a really good thing) to write about I’ll post this :P
It is indeed interesting behavior that most people (including myself) usually forget. As Tod Beardsley says in his post, there are a lot of potentials since some developers might have forgot it too. A few possibilities are remote detection, evasion of some IDS and/or IPS, or even firewalls etc.
Of course, all these are just ideas. None of them can be considered important unless somebody puts it in the test :)